GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
101 advisories
Filter by severity
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-24907
was published
Mar 28, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-24908
was published
Mar 28, 2023
In pqframework, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2023-20627
was published
Mar 7, 2023
Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.
High
Unreviewed
CVE-2023-1175
was published
Mar 4, 2023
In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, core path resolution...
Critical
Unreviewed
CVE-2023-0568
was published
Feb 16, 2023
In mtk-aie, there is a possible use after free due to a logic error. This could lead to local...
Moderate
Unreviewed
CVE-2022-32651
was published
Jan 3, 2023
In mtk-isp, there is a possible use after free due to a logic error. This could lead to local...
Moderate
Unreviewed
CVE-2022-32650
was published
Jan 3, 2023
In jpeg, there is a possible use after free due to a logic error. This could lead to local...
Moderate
Unreviewed
CVE-2022-32649
was published
Jan 3, 2023
In throttling, there is a possible out of bounds write due to an incorrect calculation of buffer...
Moderate
Unreviewed
CVE-2022-32624
was published
Dec 5, 2022
Overflow in `ResizeNearestNeighborGrad`
Moderate
CVE-2022-41907
was published
for
tensorflow
(pip)
Nov 21, 2022
Overflow in `tf.keras.losses.poisson`
Moderate
CVE-2022-41887
was published
for
tensorflow
(pip)
Nov 21, 2022
Overflow in `ImageProjectiveTransformV2`
Moderate
CVE-2022-41886
was published
for
tensorflow
(pip)
Nov 21, 2022
Overflow in `FusedResizeAndPadConv2D`
Moderate
CVE-2022-41885
was published
for
tensorflow
(pip)
Nov 21, 2022
In PHP versions prior to 7.4.33, 8.0.25 and 8.2.12, when using imageloadfont() function in gd...
High
Unreviewed
CVE-2022-31630
was published
Nov 14, 2022
In typec, there is a possible out of bounds write due to an incorrect calculation of buffer size....
Moderate
Unreviewed
CVE-2022-32617
was published
Nov 9, 2022
In typec, there is a possible out of bounds write due to an incorrect calculation of buffer size....
Moderate
Unreviewed
CVE-2022-32618
was published
Nov 9, 2022
In sensorhub, there is a possible out of bounds write due to an incorrect calculation of buffer...
Moderate
Unreviewed
CVE-2022-26474
was published
Oct 8, 2022
Due to insufficient validation of ELF headers, an Incorrect Calculation of Buffer Size can occur...
High
Unreviewed
CVE-2021-35134
was published
Sep 3, 2022
A flaw was found in libtiff 4.4.0rc1. There is a sysmalloc assertion fail in rotateImage() at...
Moderate
Unreviewed
CVE-2022-2520
was published
Sep 1, 2022
An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host...
Moderate
Unreviewed
CVE-2022-2873
was published
Aug 23, 2022
Apache Hadoop heap overflow before v2.10.2, v3.2.3, v3.3.2
Critical
CVE-2021-37404
was published
for
org.apache.hadoop:hadoop-common
(Maven)
Jun 14, 2022
Incorrect calculation of buffer size vulnerability in Peleton TTR01 up to and including PTV55G...
Moderate
Unreviewed
CVE-2021-40526
was published
May 24, 2022
An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS)....
High
Unreviewed
CVE-2020-36475
was published
May 24, 2022
There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of...
High
Unreviewed
CVE-2021-22391
was published
May 24, 2022
There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of...
High
Unreviewed
CVE-2021-22392
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API